[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: [Cfrg] Interim MAC function



> If you know the K (which we do under your proposal) we can 
> calculate IV = H(K XOR ipad) (padding it to meet block 
> requirements if required) and then calculate our collision 
> for "M" (m1 & m2) based on that IV.

But k is a function of m1/m2 (k=sha1(m1)=sha1(m2)) if you change m1 or m2
you change k.


_______________________________________________
Cfrg mailing list
Cfrg at ietf.org
https://www1.ietf.org/mailman/listinfo/cfrg